Microsoft Defender ATP
Copied!
Options
3,592
Tewang_Chen on 10-04-2019 02:57 PM
2,290
Heike Ritter on 10-01-2019 11:44 PM
3,603
Tewang_Chen on 09-30-2019 04:26 PM
3,485
Heike Ritter on 09-26-2019 04:52 AM
1,536
Efrat Kliger on 09-18-2019 12:44 AM
4,764
Hadar Feldman on 09-16-2019 04:38 AM
4,342
Evald Markinzon on 09-11-2019 12:16 PM
6,312
Hadar Feldman on 09-11-2019 07:57 AM
11K
Corina Feuerstein on 08-28-2019 05:00 AM
5,534
Daniel Naim on 08-27-2019 01:29 AM
2,792
Heike Ritter on 08-23-2019 10:04 AM
3,184
Heike Ritter on 08-15-2019 02:45 PM
1,458
Haim Goldshtein on 08-06-2019 05:43 AM
923
Heike Ritter on 08-01-2019 04:11 PM
1,519
Barak Klinghofer on 07-31-2019 11:00 AM
1,759
Daniel Naim on 07-31-2019 10:45 AM
18.1K
Hadar Feldman on 07-23-2019 11:38 AM
2,019
Haim Goldshtein on 07-23-2019 05:16 AM
5,293
Dan Michelson on 07-16-2019 09:50 PM
3,101
Heike Ritter on 07-09-2019 08:41 AM
13.3K
Helen_Allas on 07-08-2019 05:08 PM
9,208
Corina Feuerstein on 07-01-2019 01:59 PM
3,019
Heike Ritter on 06-26-2019 11:50 AM
1,214
Dan Michelson on 06-06-2019 03:45 PM
3,847
itai-zur on 06-03-2019 10:33 AM
5,335
Dan Michelson on 05-29-2019 12:45 PM
24.7K
Helen_Allas on 05-22-2019 04:36 PM
4,911
Heike Ritter on 05-20-2019 01:23 PM
11.9K
Evald Markinzon on 05-20-2019 10:55 AM
Latest Comments
@baddeacs , every advanced hunting query returns report id, event time & machine-id. You will need to extract them from the Advanced Hunting response and put them in the body as in the example in the docs.
0 Likes
@Tessem1337 We have it in our roadmap to expose Indicators API.In the meanwhile, the Alert API response includes the Incident Identifier ('incidentId'). Tou can use this to perform correlations.
0 Likes
Hi,Will there be an API for managing Incidents as well as Alerts, and the relations between them? thanks!-T.-
0 Likes
Happy to see 2008 R2 for those who need it!But, as of this comment, you still don't support Windows Server 2012. (But, you support 2008 R2 SP1, and 2012 R2 which book-end it?)
0 Likes
Hello, I'm looking for a complete CreateAlertByReference example. What is an advanced query example that will return the required reportid for the CreateAlertByReference request body? https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/create-alert-by-reference...
0 Likes